GDPR COMPLIANCE

Our expert team of data protection lawyers assists with all aspects of GDPR compliance including reviewing and drafting documentation, advising on cross-border data flows, carrying out data audits and assisting organisations to undertake and manage GDPR compliance exercises.

DATA PROTECTION IMPACT ASSESSMENTS AND DATA AUDITS

Our data protection lawyers assist clients by drafting and reviewing DPIAs, identifying data protection risks in planned projects or current processing activities and advising on risk mitigation measures.

DATA SHARING AND PROCESSING ARRANGEMENTS

We have extensive experience of advising major public sector clients on complex data sharing arrangements. We also advise financial institutions and suppliers on the data protection considerations of major IT outsourcing projects. This includes drafting and negotiating data processing agreements and contract variations to ensure GDPR compliance.

PRIVACY NOTICES AND COMPLIANCE DOCUMENTS

Our data protection lawyers have vast experience of drafting and reviewing privacy notices for our clients, including notices aimed at children. Our data protection lawyers also advise on and draft compliance documents such as policies and procedures relating to information governance and security issues.

PERSONAL DATA BREACHES AND BREACH NOTIFICATION

Personal data breaches can have serious impacts on businesses. We have wide experience advising clients who have suffered personal data breaches, including advising on breach notification requirements under the GDPR and handling investigations by the Information Commissioner.

INDIVIDUAL REQUESTS (INCLUDING SUBJECT ACCESS REQUESTS)

We advise clients on their obligations when responding to complex data subject requests, including the use of exemptions, as well as assisting clients to review and redact information before disclosure.

FOI AND EIR REQUESTS

We advise our public sector clients on their disclosure obligations, the use of exemptions and handling complaints in response to requests under the Freedom of Information Act and the Environmental Information Regulations. We also advise on investigations by the Information Commissioner. On the other side, we assist clients to make use of the access to information legislation and advise third parties on the potential impact of disclosure.

EMPLOYMENT DATA PROTECTION MATTERS

We advise private and public sector employers on their obligations under the GDPR. This includes drafting or reviewing privacy notices and privacy policies, advising employers on responding to data subject requests, providing data protection training and amending contracts of employment for compliance purposes.

DIRECT MARKETING

Our data protection lawyers advise clients on how to structure their marketing campaigns in order to comply with data protection law, including obtaining valid consents.